Symantec.com > Enterprise > Security Response > Backdoor.Helios.B

Backdoor.Helios.B

Risk Level 1: Very Low

Discovered:
November 12, 2003
Updated:
February 13, 2007 12:13:47 PM
Type:
Trojan Horse
Systems Affected:
Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows XP


Backdoor.Helios.B is a backdoor Trojan horse that is a variant of Backdoor.Helios. It is written in Microsoft Visual Basic, version 6.

Backdoor.Helios.B gives its creator unauthorized access to an infected computer using Internet Relay Chat (IRC).

The existence of the Ssvchost.exe file is an indication of a possible infection.

The Trojan attempts to disable some antivirus and firewall programs by terminating the active processes.

Antivirus Protection Dates

  • Initial Rapid Release version November 13, 2003
  • Latest Rapid Release version September 28, 2010 revision 054
  • Initial Daily Certified version November 13, 2003
  • Latest Daily Certified version September 28, 2010 revision 036
  • Initial Weekly Certified release date November 17, 2003
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.

Threat Assessment

Wild

  • Wild Level: Low
  • Number of Infections: 0 - 49
  • Number of Sites: 0 - 2
  • Geographical Distribution: Low
  • Threat Containment: Easy
  • Removal: Moderate

Damage

  • Damage Level: Medium

Distribution

  • Distribution Level: Low
Writeup By: Kevin Ha

Search Threats

Search by name

Example: W32.Beagle.AG@mm
ThreatCon Widget
Internet Security Threat Report, Volume 16
Symantec DeepSight Screensaver